CVE-2010-3854
Published Feb 2, 2011
Last updated 2 years ago
Overview
- Description
- Multiple cross-site scripting (XSS) vulnerabilities in the web administration interface (aka Futon) in Apache CouchDB 0.8.0 through 1.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- Source
- secalert@redhat.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:apache:couchdb:0.8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6C34E385-5C4A-40B7-B885-9C4E8650951E" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "851F7B38-A8DE-4C8C-B269-17341BD65FA5" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9E309D1E-3E22-4DF0-9A5C-D40640046600" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "83D814EB-31BB-41DD-923D-E4379B3875E7" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "59EB2847-CACC-42A1-88FF-73E638E5F9DC" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3057284C-DD40-4F03-BC6A-E41E5CF53FD9" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.10.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B8F76AB-6794-44BE-AE6B-34B52690A2DE" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.10.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CAFF4452-E786-4D48-ABCD-DBD18E9B9C47" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.11.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58F9A741-1257-4ED3-9A70-FE2545C40742" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.11.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B53CB851-F1AF-4292-AF3D-9191B71F3BC8" }, { "criteria": "cpe:2.3:a:apache:couchdb:0.11.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CAF2BB9E-B94C-466D-BA5A-CA9CAD372012" }, { "criteria": "cpe:2.3:a:apache:couchdb:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6572D2CB-472B-4CF0-B802-F52C12BA88BC" }, { "criteria": "cpe:2.3:a:apache:couchdb:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F3142CB-1AF1-456D-AF66-3701FECBD490" } ], "operator": "OR" } ] } ]